this post was submitted on 05 Oct 2026
550 points (99.5% liked)

Technology

88390 readers
3100 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 3 years ago
MODERATORS
 

What just happened? Another incident has taken place that illustrates the need to be careful what you tell AI. A Florida woman is facing felony charges after she used Claude as a diary and allegedly wrote that she planned to "shoot up" the Sheriff's office. After a human reviewer examined the statements, they were reported to police.

According to the arrest report, Carli Michelle Heller, of Bonita Springs, Florida, wrote on September 26 that she would attack the Sheriff's office. She later said that she uses Anthropic's chatbot like a "diary."

Claude's safety systems flagged the entry and it was escalated to a human reviewer. After deciding it was a credible threat, the reviewer reported it to law enforcement.

The company says it may share user information in limited emergencies if it believes disclosure is necessary to prevent death or serious physical injury.

Deputies identified Heller and visited her home. She was detained without incident before an LCSO intelligence detective took over the investigation.

Heller faces a charge of making a written threat of violence under Florida law. Florida Statute 836.10 makes it a second-degree felony to send, post, or transmit a written or electronic record threatening to kill or injure someone, carry out a mass shooting, or commit an act of terrorism. The communication must be made in a manner in which another person may view it.

Anthropic isn't going to be taking any chances when it comes to anything it deems a potential threat. Last month, it was reported that OpenAI and Sam Altman are being sued by British Columbia over claims that the company could have prevented a mass shooting in the Canadian province.

The shooter, eighteen-year-old former pupil Jesse Van ⁠Rootselaar, had previously been flagged by OpenAI's safety team for her conversations about gun violence, but OpenAI never alerted police because the conversations did not meet the threshold for legal referral.

In June, Florida also sued OpenAI and Altman, alleging that ChatGPT had contributed to real-world harms, including the 2025 Florida State University shooting.

The latest incident is another reminder to think before you enter something into a chatbot that could get you into trouble. It's certainly not a private diary whose contents are for your eyes only.

Reports last month revealed that human contractors reviewing Microsoft Copilot's image editor can see users' prompts, uploaded photos and AI-generated edits. Documents show that some of those assignments contain sexual, disturbing or potentially illegal material, though the reviewers are not there to flag the content – only to assess whether the output is accurate.

top 50 comments
sorted by: hot top controversial new old
[–] iuseasahibtw@ani.social 7 points 44 minutes ago

Self host if you're gonna use AI, in fact, self host whenever possible. There are numerous examples of companies using centralized data to sell, report to police, or even having it fall into the hands of hackers.

I really think people think that all data input to a website is actually stored locally, nope, don't be dumb.

[–] rounding_error@lemmy.today 2 points 18 minutes ago* (last edited 17 minutes ago)

The communication must be made in a manner in which another person may view it.

So, their entire argument hinges on someone from Anthropic manually reviewing EVERY ""private"" message someone sends to Claude? Them false charges.

[–] SocialMediaRefugee@lemmy.world 5 points 2 hours ago (1 children)

They need to put one of those "I understand" checkbox disclaimers when you start a session. "I understand that what I enter here could be subject to human review and reporting to law enforcement."

[–] GreenKnight23@lemmy.world 1 points 2 hours ago

as someone who designed UI/UX, nobody would read it.

what you described is a "legal obstacle" that only helps the company mitigate a future lawsuit from happening.

easier and cheaper to bury it in the TOS/contract and let the lawyers figure it out.

[–] PangurBan@lemmy.world 8 points 3 hours ago (1 children)

ZDR policies really are a must. If a service doesn't have it, don't use it.

[–] DylanMc6@lemmy.dbzer0.com 5 points 3 hours ago (4 children)

Zero data retention. And even that is a pinky promise unless compliance has been audited by an independent 3rd party.

Honestly, if this sort of stuff is a concern for people, I'd investigate using direct API access, or perhaps subscribing to Lumo, which has a better privacy model from what I understand.

Or run it at home on your own rig. Qwen 3.6-35B Is more than capable for this use case. Hell, Qwen 3.5-9B even.

[–] Goforce5@lemmy.world 12 points 3 hours ago

Zero Data Retention

Presumably zero data retention? It seems to me that what you'd want is for it to never be processed off-device in the first place, but I suppose to each their own.

[–] Linktank@lemmy.today -3 points 3 hours ago (1 children)

They're just going to be like "Google it, I'm not your Mom!" or something to that effect. This happens a lot here. Someone comes along, drops some niche term and doesn't bother to explain it at all because they either don't know how to imagine what it's like to not know what they know, or they just don't give a shit about not being understood by people who don't already know.

[–] Ledivin@lemmy.world 19 points 2 hours ago

You somehow managed to craft a reply that added even less value to the conversation than the one you're complaining about. Amazing!

[–] SocialMediaRefugee@lemmy.world 4 points 2 hours ago* (last edited 2 hours ago)

Sounds like a gray area. She didn't write it with the intention of it being transmitted to anyone. It wouldn't be any different than writing it in a private diary. The BC lawsuit though puts them in an obvious bind so the law needs to choose a side, is it a private forum or not?

[–] LovableSidekick@lemmy.world 2 points 2 hours ago* (last edited 2 hours ago) (1 children)

The company says it may share user information in limited emergencies...

IMO sharing the information isn't so much the issue as "reviewing" it in the first place. She wasn't publishing a blog.

[–] baltakatei@sopuli.xyz 2 points 2 hours ago

AI Hyperscaler: My emergency is that we will run out of funding in a year if we don't [insert morally bankrupt action here] to raise another 10 billion USD.

[–] heartSagan5@lemmy.zip 2 points 3 hours ago

I always knew it was going to happen. In fact, I won’t be surprised if the FBI starts coming up.

[–] Greyghoster@aussie.zone 11 points 5 hours ago (1 children)

While a chatbot has been demonstrated not to be a private diary, it will be interesting to see if the courts agree that she intentionally use her diary to communicate or thought that someone else would read it. Like most users of dear diary she probably thought her secrets were safe and her diary would never tell.

[–] racketlauncher831@lemmy.ml 2 points 4 hours ago (2 children)

This. The law says, "to send, post, or transmit a written or electronic record." How is talking to AI satisfying the threshold of sending, posting, or transmitting?

[–] Ledivin@lemmy.world 4 points 2 hours ago* (last edited 2 hours ago) (2 children)

How would this conversation NOT classify as "send[ing] a[n] electronic record"? There's very literally no interpretation that would escape it... this was an online chat bot, that only gets messages (record) that you send over the internet (electronic).

[–] SuspiciousCarrot78@aussie.zone 1 points 55 minutes ago* (last edited 53 minutes ago)

Because the context is likey to be "... to a third party" of a presumably human kind. Human to clanker (which then gets eavesdropped) ought not to qualify.

Ofc letter of law vs spirit of law, variation in jurisdictions, legal interpretation, YMMV etc etc

[–] YeahToast@aussie.zone 1 points 1 hour ago

Not reading into the law.. because well. I'm lazy. My query would be if transmitting needs to be to a receiving party (i. e. Threat directly to the police station, or a public group /person that would receive the threat). If this person was using it as a diary, it may warrant that there was never any intention for the threat to be publicized and thus not acted on? Dunno. We're both probably dumber for writing and reading my comment

[–] lightnsfw@reddthat.com 6 points 4 hours ago

Transmitting from Your PC > ai server?

[–] Mulligrubs@lemmy.world 21 points 6 hours ago (3 children)

Florida Statute 836.10 makes it a second-degree felony to send, post, or transmit a written or electronic record threatening to kill or injure someone

This means a significant portion of Lemmy (and the rest of the internet) are criminals evading justice

great law top shelf

[–] baltakatei@sopuli.xyz 3 points 2 hours ago

If Florida weren't already Trump's safe space, his death threats to dissidents would add more felonies to his list.

[–] vaultdweller013@sh.itjust.works 1 points 2 hours ago

Good thing I ain't in Florida then ain't it, and if Florida illegally sends their marshals after me then I get some toys.

[–] uriel238@lemmy.blahaj.zone 3 points 5 hours ago

If you think Lemmy is bad, check out 4chan/b and /pol. We've had a few active shooters forecast there first, but it's ignored in a sea of statements of intent and calls to violence.

An awful lot of people have suicidal or homicidal thoughts cross their mind. Doubly so in an era in which entire demographics have no plausible hope for their future. I, for one, want to see the lifetime appointments of Federalist Society jurists become a liability. Especially, Justice Kavanaugh.

So this incident raises a question of what specific clause of text convinced a human agent to escalate the matter to escalate to authorities who are very fond of using deadly force. Or if this is just a matter of a corporate CYA response.

[–] captain_aggravated@sh.itjust.works 13 points 6 hours ago (1 children)

How FUCKING hard is it to use like, notepad?

[–] redballooon@lemmy.world 10 points 6 hours ago (1 children)

Notepad doesn't answer and doesn't agree as eagerly.

[–] captain_aggravated@sh.itjust.works 6 points 6 hours ago (1 children)

I was about to say "I know! That's the beauty of it!" but didn't they integrate Copilot into Notepad?

use Vim.

[–] rob_t_firefly@lemmy.world 1 points 3 hours ago

Use EDIT.COM for MS-DOS.

[–] rob_t_firefly@lemmy.world 1 points 3 hours ago

Carli Michelle Heller has really changed since back in the day when she used to play Buffy the vampire slayer on TV.

[–] athatet@lemmy.zip 18 points 7 hours ago

Hell yeah. Thought crime. Time to get Tom Cruise in here to Minority Report all of us.

[–] BeMoreCareful@lemmy.world 4 points 5 hours ago

I love that Florida Man is a meme for being completely wild, dangerous, and generally criminal, but Florida Woman writes a diary.

No problems here.

[–] Kaligalis@lemmy.world 3 points 5 hours ago* (last edited 5 hours ago)

She clearly didn't intent to act on it and didn't intend for it to be read by anyone else than her AI boyfriend. So it's not matching the criteria of the law. Legally, she did nothing wrong.

[–] percent@infosec.pub 57 points 11 hours ago (1 children)

It's always interesting to see how much people trust sending such personal information to some service on the Internet, expecting privacy.

I'm not sure I'd even want my own self-hosted LLMs to have something like a personal diary. Sending all that to an AI company would never even cross my mind.

I understand that most people aren't the tech-oriented types who get into self-hosting and running their own LLMs, but people have had diaries for centuries before LLMs existed.

[–] SuspiciousCarrot78@aussie.zone 1 points 41 minutes ago* (last edited 38 minutes ago)

While I'm not the biggest fan of this (for technical reasons), this is quite simple to onboard

https://www.jan.ai/

I mean, it's pretty much a "one-click install your own local AI chatbot" at this point.

[–] Yerbouti@sh.itjust.works 15 points 11 hours ago (2 children)

Dear Claude, I'm aware of a dangerous pedophile's location, can you report him to the police?

[–] DaGreenGobbo@feddit.uk 7 points 6 hours ago

"Pennsylvania Avenue? We've been getting a lot of reports about that address but I'm afraid my programming does not permit me to proceed with that request. Do you have anything else to report?"

[–] absGeekNZ@lemmy.nz 2 points 7 hours ago

Does this work?

[–] humanspiral@lemmy.ca 43 points 13 hours ago

After a human reviewer examined the statements, they were reported to police.

The guardrails are working as intended. ONLY persecute the public with them. Government skynet, and bond villains will have access to non guardrailed models, or any "flagged for review" markers will be ignored to bomb more elementary schools. A sheriff's office is government power related. School shootings is just a thoughts and prayers issue, if you're confused about the line between this and other incidents/attitudes we are being spied on for.

[–] rbb36@lemmy.world 88 points 15 hours ago (6 children)

"The company says it may share user information in limited emergencies if it believes disclosure is necessary to prevent death or serious physical injury."

Also keep in mind: Your chat logs are company assets. Even if today's decision makers believe maintaining user trust is net profitable, that will not always be true. Some day, maybe when the pullback comes and the wolves are at the gates, or when they sell the company, or when a shareholder action asserts fiduciary duty to maximize shareholder value, your chat logs will be sold and mined in the most lucrative way possible. The way that extracts the most value from you, the product.

load more comments (6 replies)
load more comments
view more: next ›